← KEV catalogCISA known exploited vulnerability
CVE-2013-2251
Apache Struts Improper Input Validation Vulnerability
SOURCE FACT
Apache · Struts
Apache Struts allows remote attackers to execute arbitrary Object-Graph Navigation Language (OGNL) expressions.
Required action
Apply updates per vendor instructions.
CISA notes
https://nvd.nist.gov/vuln/detail/CVE-2013-2251
View source evidence →
CHECK YOUR OUTSIDE-IN INVENTORY
Could this product be present?